检索 GitHub Advisory Database 中的已审查与未审查安全公告。
| 公告编号 | 摘要 | 级别 | 生态 / 软件包 | 审查状态 | 发布时间 | 修改时间 |
|---|---|---|---|---|---|---|
| GHSA-RF3W-29H3-R636 CVE-2020-21322 | Arbitrary Code Execution in feehi/cms | 高危 | Packagistfeehi/cms | 已审查 | 2021-09-21 04:45 | 2021-09-18 01:54 |
| GHSA-6Q3P-36F4-CWXV CVE-2020-21122 | Server-Side Request Forgery in UReport |
当前筛选结果 366,391 条 · 时间按北京时间显示
| 高危 |
Mavencom.bstek.ureport:ureport2-console |
| 已审查 |
| 2021-09-21 04:45 |
| 2021-09-17 02:52 |
| GHSA-729F-WVJ3-C4PJ CVE-2020-21125 | Remote code execution in UReport | 严重 | Mavencom.bstek.ureport:ureport2-core | 已审查 | 2021-09-21 04:45 | 2023-09-27 01:31 |
| GHSA-HQHP-5P83-HX96 CVE-2021-3801 | prismjs Regular Expression Denial of Service vulnerability | 中危 | npmprismjs | 已审查 | 2021-09-21 04:44 | 2022-08-11 07:38 |
| GHSA-4GF2-XV97-63M2 CVE-2020-1744 | Exposure of Sensitive Information in keycloak | 中危 | Mavenorg.keycloak:keycloak-core | 已审查 | 2021-09-21 04:43 | 2021-09-17 02:21 |
| GHSA-CPQ8-X35G-M439 CVE-2021-3783 | Cross-site Scripting in yourls | 中危 | Packagistyourls/yourls | 已审查 | 2021-09-21 04:43 | 2021-09-17 02:19 |
| GHSA-M9FQ-C9HP-59G7 CVE-2021-3785 | Cross-site Scripting in yourls | 中危 | Packagistyourls/yourls | 已审查 | 2021-09-21 04:42 | 2021-09-24 21:08 |
| GHSA-F2C5-997W-7F5C CVE-2021-3780 | Cross-site Scripting in peertube | 中危 | npmpeertube | 已审查 | 2021-09-21 04:42 | 2021-09-24 21:07 |
| GHSA-44C6-4V22-4MHX CVE-2021-3795 | semver-regex Regular Expression Denial of Service (ReDOS) | 高危 | npmsemver-regex | 已审查 | 2021-09-21 04:42 | 2023-07-11 21:37 |
| GHSA-VVF2-PPJ9-PP49 CVE-2021-3794 | Inefficient Regular Expression Complexity in vuelidate | 高危 | npm@vuelidate/validators | 已审查 | 2021-09-21 04:42 | 2022-05-04 11:24 |
| GHSA-45H5-R968-5XR7 CVE-2021-22147 | Exposure of sensitive information in Elasticsearch | 中危 | Mavenorg.elasticsearch:elasticsearch | 已审查 | 2021-09-21 04:29 | 2021-09-28 02:51 |
| GHSA-JGRX-MGXX-JF9V CVE-2021-3777 | tmpl vulnerable to Inefficient Regular Expression Complexity which may lead to resource exhaustion | 高危 | npmtmpl | 已审查 | 2021-09-21 04:27 | 2022-08-11 07:37 |
| GHSA-7RP6-W7MG-H8RW CVE-2021-39239 | XML External Entity Reference in Apache Jena | 高危 | Mavenorg.apache.jena:jena-core | 已审查 | 2021-09-21 04:22 | 2021-09-18 02:29 |
| GHSA-93Q8-GQ69-WQMW CVE-2021-3807 | Inefficient Regular Expression Complexity in chalk/ansi-regex | 高危 | npmansi-regex | 已审查 | 2021-09-21 04:20 | 2023-09-12 00:42 |
| GHSA-49X3-8228-3W3M CVE-2021-3810 | Inefficient Regular Expression Complexity in code-server | 高危 | npmcode-server | 已审查 | 2021-09-21 04:18 | 2021-09-21 02:59 |
| GHSA-F6JP-J6W3-W9HM CVE-2021-41303 | Apache Shiro vulnerable to a specially crafted HTTP request causing an authentication bypass | 严重 | Mavenorg.apache.shiro:shiro-core | 已审查 | 2021-09-21 04:18 | 2022-08-16 04:07 |
| GHSA-92V9-XH2Q-FQ9F CVE-2021-23442 | Prototype Pollution in cookiex/deep | 高危 | npm@cookiex/deep | 已审查 | 2021-09-21 04:12 | 2022-12-03 12:00 |
| GHSA-468Q-V4JJ-485H CVE-2021-3804 | Inefficient Regular Expression Complexity in taro | 高危 | npm@tarojs/helper | 已审查 | 2021-09-21 04:09 | 2021-09-21 04:00 |
| GHSA-Q879-9G95-56MX CVE-2021-39219 | Wrong type for `Linker`-define functions when used across two `Engine`s | 中危 | crates.iowasmtime | 已审查 | 2021-09-21 03:54 | 2024-11-20 02:05 |
| GHSA-4873-36H9-WV49 CVE-2021-39218 | Out-of-bounds read/write and invalid free with `externref`s and GC safepoints in Wasmtime | 中危 | crates.iowasmtime | 已审查 | 2021-09-21 03:54 | 2024-11-20 02:04 |
| GHSA-V4CP-H94R-M7XF CVE-2021-39216 | Use after free passing `externref`s to Wasm in Wasmtime | 中危 | crates.iowasmtime | 已审查 | 2021-09-21 03:54 | 2024-11-20 02:00 |
| GHSA-579X-CJVR-CQJ9 CVE-2021-39189 | Observable Response Discrepancy in Lost Password Service | 中危 | Packagistpimcore/pimcore | 已审查 | 2021-09-21 03:53 | 2021-09-18 02:38 |
| GHSA-JP7F-GRCV-6MJF CVE-2021-39208 | Partial path traversal in sharpcompress | 中危 | NuGetSharpCompress | 已审查 | 2021-09-21 03:53 | 2024-07-08 22:33 |
| GHSA-22GH-3R9Q-XF38 CVE-2021-39214 | Lacking Protection against HTTP Request Smuggling in mitmproxy | 严重 | PyPImitmproxy | 已审查 | 2021-09-21 03:53 | 2024-10-02 03:26 |
| GHSA-FHV8-FX5F-7FXF CVE-2021-39227 | Prototype Pollution in the merge and clone helper methods | 中危 | npmzrender | 已审查 | 2021-09-21 03:53 | 2024-12-07 02:20 |